tools such as AWS CodeBuild, Jenkins, GitLab, Azure DevOps. Proficiency in scripting languages such as Python, PowerShell. Knowledge of security tools and frameworks (e.g., OWASP, SCA, SAST, DAST). Familiarity with one or more cloud platforms (AWS, Azure, GCP) and containerization technologies (Docker, Kubernetes). Excellent problem-solving skills and More ❯
development and cloud security (CSSLP, AZ-500, SC-100/SC-200, AWS Security, GCSA, GCLD, or similar). Familiarity with secure coding standards (OWASP, SEI CERT) and SSDLC models (Microsoft SDL, NIST 800-218 SSDF). Knowledge or experience of Product Assurance Schemes (PAS) or product security frameworks (PAS More ❯
with AWS (or other cloud-based solutions) . Strong understanding of secured Software Development Lifecycle (SDLC) and CI/CD platforms . Familiarity with OWASP, CIS frameworks, and security best practices . Infrastructure & Scripting Knowledge: Proficiency in Microsoft platforms (Office 365, IIS, .NET, SQL Server, Windows Server, Active Directory). More ❯
with AWS (or other cloud-based solutions) . Strong understanding of secured Software Development Lifecycle (SDLC) and CI/CD platforms . Familiarity with OWASP, CIS frameworks, and security best practices . Infrastructure & Scripting Knowledge: Proficiency in Microsoft platforms (Office 365, IIS, .NET, SQL Server, Windows Server, Active Directory). More ❯
and AI/ML technologies. Deep understanding of DevSecOps principles and agile development. Knowledge of secure architecture and design principles, industry standards (NIST SSDF, OWASP) and security best practices. Ability to formulate strategic concepts, propose security solutions and communicate effectively to both technical staff and non-technical stakeholders. To be More ❯
Portsmouth, Hampshire, United Kingdom Hybrid / WFH Options
risual Limited
Application Developers, Support Engineers, Software Testers, and UX designers. Develop code based on coding standards and programming methods (e.g., Data security and best practices - OWASP, GDPR restrictions and requirements, Git/Azure DevOps Workflow, and other internal processes). Use a variety of agile methodologies and follow the DevOps process More ❯
versed in Information security principles at an Intermediate level. Exposure to applicationsecurity testing (source code review, threat modeling, security testing). Understanding of OWASP, CVSS, the MITRE ATT&CK framework, and the software development lifecycle (SLDC). What is it like to work here? Outstanding - you've probably already More ❯
versed in Information security principles at an Intermediate level. Exposure to applicationsecurity testing (source code review, threat modeling, security testing). Understanding of OWASP, CVSS, the MITRE ATT&CK framework, and the software development lifecycle (SLDC). What is it like to work here? Outstanding - you've probably already More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Ignite Digital Search Limited
of security frameworks such as ISO 27001, NIST, or CIS benchmarks. Experience in applicationsecurity reviews, vulnerability management, and security controls implementation. Familiarity with OWASP Top 10, CWE, and secure coding practices. Proficiency in using security tools such as static and dynamic analysis tools. Basic coding/scripting skills in More ❯
knowledge of Agile, DevSecOps, System Engineer and or equivalent Knowledge of security standards and secure development principles such as NCSC Secure Development & Deployment Guidance, OWASP, NIST Secure Software Development Framework (SSDF - 800-218), Microsoft Azure Secure Development best practices, ISO27001 Experience with Azure cloud infrastructure, particularly Azure PaaS service Experience More ❯
opportunity with a ton of cool projects and tech you'll be working with. To succeed you'll need: Strong applicationsecurity knowledge (e.g., OWASP). Familiarity with cloud platforms (AWS, Azure, GCP). Proficiency in IaC tools (Terraform, CloudFormation) for security deployment. Experience extracting metrics from security tools. Expertise More ❯
/IPS, micro-segmentation, host security) Hands-on experience with security products like Trellix, Ivanti, ClearSwift, Yubikey Understanding of secure coding practices and vulnerabilities (OWASP Top 10, SANS Top 25) Expertise in identity and access management (RBAC, ABAC, JWT, Cookies) Incident detection and response in MOD environments Knowledge of securityMore ❯
Milton Keynes, Buckinghamshire, United Kingdom Hybrid / WFH Options
Allica Bank Limited
and provisioning cloud-native services on Azure. Experience building CI/CD pipelines for web, backend, and data teams. Good understanding of Applicationsecurity - OWASP Top 10, storing credentials, etc. Good understanding of Linux and Windows Operating Systems. Hands-On Experience with technologies like Azure services, Terraform, Azure DevOps, Docker More ❯
Build and maintain REST API microservices using Java 17 (and occasionally Go), deploying them on OpenShift/Kubernetes 🔹 Integrate security tools like Snyk, BlackDuck, OWASP DependencyTrack, and Artifactory into our CI/CD pipelines 🔹 Work with Jenkins, TeamCity, and Tekton to optimize and maintain our DevSecOps toolchain 🔹 Collaborate with developers More ❯
Build and maintain REST API microservices using Java 17 (and occasionally Go), deploying them on OpenShift/Kubernetes 🔹 Integrate security tools like Snyk, BlackDuck, OWASP DependencyTrack, and Artifactory into our CI/CD pipelines 🔹 Work with Jenkins, TeamCity, and Tekton to optimize and maintain our DevSecOps toolchain 🔹 Collaborate with developers More ❯
Leeds, West Yorkshire, United Kingdom Hybrid / WFH Options
Corecom Consulting
Experience with cloud technologies such as Microsoft Azure or AWS. Hands-on experience with browser automation tools and writing Cucumber/Gherkin. Familiarity with OWASP Testing Tools and CI/CD pipelines. Knowledge of ISTQB/ISEB qualifications, JIRA, and Microsoft Azure DevOps. Experience in performance testing (K6 experience is More ❯
pipelines implemented in Docker, Linux & Gradle. Behaviour Driven Development (BDD), with Gherkin & SpecFlow. Atlassian Jira, Github, Bamboo, Confluence & JFrog Artifactory. Software security implementation (e.g. OWASP, PKI, X509 Certificates, TLS). Software development for regulated environments (e.g. IVD/Medical devices). In addition to salary, we work flexibly, and provide More ❯
solid understanding of data security principles and mechanisms, including encryption and masking and familiarity with major security standards and frameworks (e.g., ISO 27001, NIST, OWASP). Any experience with programming languages like Python, Go, or Java would be a distinct advantage. More ❯
in a recent .Net Framework. Project management tools such as Jira. SonarQube, GitLab, or similar for code quality analysis. Security practices and tools like OWASP and Snyk, or similar. Typescript. CI/CD tools e.g. Jenkins, Azure pipelines, GitHub actions. ELK stack, Prometheus, or Grafana. Benefits: Annual bonus scheme. More ❯
in a recent .Net Framework. Project management tools such as Jira. SonarQube, GitLab, or similar for code quality analysis. Security practices and tools like OWASP and Snyk, or similar. Typescript. CI/CD tools e.g. Jenkins, Azure pipelines, GitHub actions. ELK stack, Prometheus, or Grafana. Benefits: Annual bonus scheme. More ❯
in a recent .Net Framework. Project management tools such as Jira. SonarQube, GitLab, or similar for code quality analysis. Security practices and tools like OWASP and Snyk, or similar. Typescript. CI/CD tools e.g. Jenkins, Azure pipelines, GitHub actions. ELK stack, Prometheus, or Grafana. Benefits: Annual bonus scheme. More ❯
both strategic needs and day-to-day challenges, unblocking the team as needed. Skills, Knowledge and Expertise Experience with tools like Serenity, Selenium, RestAssured, Owasp ZAP, AXE, Locust and JMeter, build tools like Maven or Gradle, and Git for version control. Experience with unit test frameworks like JUnit or similar More ❯
core areas: Build verification Alert and Monitoring Backup and Restore Resilience and Recovery Logging, Audit and House Keeping Release Management Config Management Work Instructions OWASP "top ten" security tests Experience with CI/CD pipelines, Jenkins, and test automation frameworks. Knowledge of cloud platforms (AWS/Azure), infrastructure monitoring, and More ❯
security policies, procedures, and best practices. Requirements: Proven experience in applicationsecurity, penetration testing, and secure software development practices. Strong understanding of security vulnerabilities (OWASP Top 10, etc.) and secure coding techniques. Experience with security tools (e.g., static/dynamic analysis tools, vulnerability scanners). Familiarity with common web technologies More ❯
CD) Familiar with scripting languages like PowerShell, YAML, JSON Expertise in applicationsecurity tools and DevSecOps processes Understanding of key frameworks and standards (e.g. OWASP, NIST SSDF, ISO27001, NCSC) Experience with threat modelling, risk assessments, and secure design reviews Comfortable owning security strategy and tooling across complex, modern product landscapes More ❯